
Principal Product Cyber Security Architect
Posted Aug 14

Posted Aug 14
This is a fully remote position, open to applicants in United States.
• Evaluate secure architectures for industrial energy products, establishing security zones, conduits, trust boundaries, authentication and authorization frameworks, data protection methodologies, and remote access controls.
• Create reusable security patterns, reference architectures, and design standards.
• Lead threat modeling and risk assessments in accordance with IEC 62443-3-2.
• Generate data flow diagrams, conduct threat analyses, assign risk ratings, and provide prioritized recommendations.
• Advocate for and implement AI-assisted tools and automation for threat modeling and risk assessment processes.
• Incorporate human-in-the-loop validation, IEC 62443 traceability, and SBOM/vulnerability information.
• Convert SDL requirements into product-specific guidelines for secure installation, configuration, hardening, and operational documentation.
• Facilitate SDL execution by defining security requirements, performing design reviews, assessing security gates, and preparing security evidence, test documents, and compliance artifacts.
• Contribute reusable templates, artifact libraries, and lessons learned to the Secure Development & Supply Chain team.
• Design, maintain, and deliver role-based training and enablement through structured learning paths.
• Extensive experience in cybersecurity, emphasizing product, system, or architecture security.
• Proven track record of producing security architecture deliverables, threat models, and risk assessments.
• Proficient understanding of IEC 62443, specifically 62443-3-2, 62443-3-3, and 62443-4-1.
• Experience in creating security requirements, hardening guides, and assessment reports.
• Familiarity with OT/ICS product architectures and deployment environments within the energy sector.
• Excellent written communication skills for converting technical security findings into actionable recommendations.
• Experience with industrial energy technology products, including GE Vernova platforms.
• Background in utilizing AI-enabled tools for threat modeling or security analysis.
• Understanding of EU Cyber Resilience Act requirements.
• Experience contributing to SDL artifact libraries or security pattern catalogs.
• Preferred relevant certifications such as GICSP, CSSLP, or ISA/IEC 62443 certification.
• Bachelor's or Master's degree in Cybersecurity, Computer Science, Electrical Engineering, or a related field is advantageous.
• Must possess legal authorization to work in the United States.
• Successful completion of a drug screen, if applicable.
• Diverse and competitive benefits.
• Opportunities for professional development.
• On-the-job learning and growth.
• Comprehensive medical coverage.
• Dental insurance.
• Vision coverage.
• Prescription drug benefits.
• Access to a Health Coach from GE Vernova.
• Employee Assistance Program offering 24/7 confidential assessment, counseling, and referral services.
• GE Vernova Retirement Savings Plan.
• Tax-advantaged 401(k) savings opportunity.
• Company matching contributions.
• Company retirement contributions.
• Fidelity resources and financial planning consultants.
• Tuition assistance.
• Adoption assistance.
• Paid parental leave.
• Disability benefits.
• Life insurance coverage.
• 12 paid holidays.
• Permissive time off.
• Eligibility for discretionary annual bonuses.
ASG Technologies
CrowdStrike
Culmen International
Threatscape
Get handpicked remote jobs straight to your inbox weekly.